cbcvebase.

Huawei Emui vulnerabilities

831 known vulnerabilities affecting huawei/emui.

Total CVEs
831
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL148HIGH465MEDIUM199LOW19

Vulnerabilities

Page 10 of 42
CVE-2023-44111P3HIGHCVSS 7.5v12.0v12.0.1+2 more2023-10-11
CVE-2023-44111 [HIGH] CWE-307 CVE-2023-44111: Vulnerability of brute-force attacks on the device authentication module.Successful exploitation of Vulnerability of brute-force attacks on the device authentication module.Successful exploitation of this vulnerability may affect service confidentiality.
nvd
CVE-2023-44096P3HIGHCVSS 7.5v12.0v12.0.1+2 more2023-10-11
CVE-2023-44096 [HIGH] CWE-287 CVE-2023-44096: Vulnerability of brute-force attacks on the device authentication module.Successful exploitation of Vulnerability of brute-force attacks on the device authentication module.Successful exploitation of this vulnerability may affect service confidentiality.
nvd
CVE-2023-44097P3HIGHCVSS 7.5v12.0.1v13.0.02023-10-11
CVE-2023-44097 [HIGH] CWE-200 CVE-2023-44097: Vulnerability of the permission to access device SNs being improperly managed.Successful exploitatio Vulnerability of the permission to access device SNs being improperly managed.Successful exploitation of this vulnerability may affect service confidentiality.
nvd
CVE-2023-52374P3HIGHCVSS 7.5v13.0.02024-02-18
CVE-2023-52374 [HIGH] CWE-863 CVE-2023-52374: Permission control vulnerability in the package management module.Successful exploitation of this vu Permission control vulnerability in the package management module.Successful exploitation of this vulnerability may affect service confidentiality.
nvd
CVE-2023-52379P3HIGHCVSS 7.5v12.0.0v13.0.02024-02-18
CVE-2023-52379 [HIGH] CWE-276 CVE-2023-52379: Permission control vulnerability in the calendarProvider module.Successful exploitation of this vuln Permission control vulnerability in the calendarProvider module.Successful exploitation of this vulnerability may affect service confidentiality.
nvd
CVE-2023-39394P3HIGHCVSS 7.5v12.0.1v13.0.02023-08-13
CVE-2023-39394 [HIGH] CWE-264 CVE-2023-39394: Vulnerability of API privilege escalation in the wifienhance module. Successful exploitation of this Vulnerability of API privilege escalation in the wifienhance module. Successful exploitation of this vulnerability may cause the arp list to be modified.
nvd
CVE-2026-28552P3HIGHCVSS 7.5v14.0.0v14.2.0+1 more2026-03-05
CVE-2026-28552 [HIGH] CWE-19 CVE-2026-28552: Out-of-bounds write vulnerability in the IMS module. Impact: Successful exploitation of this vulnera Out-of-bounds write vulnerability in the IMS module. Impact: Successful exploitation of this vulnerability may affect availability.
nvd
CVE-2021-46892P3HIGHCVSS 7.5v12.0.02023-07-06
CVE-2021-46892 [HIGH] CWE-701 CVE-2021-46892: Encryption bypass vulnerability in Maintenance mode. Successful exploitation of this vulnerability m Encryption bypass vulnerability in Maintenance mode. Successful exploitation of this vulnerability may affect service confidentiality.
nvd
CVE-2024-56447P3HIGHCVSS 7.5v12.0.0v13.0.0+1 more2025-01-08
CVE-2024-56447 [HIGH] CWE-269 CVE-2024-56447: Vulnerability of improper permission control in the window management module Impact: Successful expl Vulnerability of improper permission control in the window management module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
nvd
CVE-2023-52955P3HIGHCVSS 7.5v12.0.0v13.0.02025-01-08
CVE-2023-52955 [HIGH] CWE-264 CVE-2023-52955: Vulnerability of improper authentication in the ANS system service module Impact: Successful exploit Vulnerability of improper authentication in the ANS system service module Impact: Successful exploitation of this vulnerability may cause features to perform abnormally.
nvd
CVE-2024-9136P3HIGHCVSS 7.5v14.0.02024-09-27
CVE-2024-9136 [HIGH] CWE-863 CVE-2024-9136: Access permission verification vulnerability in the App Multiplier module Impact: Successful exploit Access permission verification vulnerability in the App Multiplier module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
nvd
CVE-2024-45450P3HIGHCVSS 7.5v12.0.0v13.0.0+1 more2024-09-04
CVE-2024-45450 [HIGH] CWE-200 CVE-2024-45450: Permission control vulnerability in the software update module. Impact: Successful exploitation of t Permission control vulnerability in the software update module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
nvd
CVE-2026-34853P3HIGHCVSS 7.5v14.0.0v14.2.0+1 more2026-04-13
CVE-2026-34853 [HIGH] CWE-270 CVE-2026-34853: Permission bypass vulnerability in the LBS module. Impact: Successful exploitation of this vulnerabi Permission bypass vulnerability in the LBS module. Impact: Successful exploitation of this vulnerability may affect availability.
nvd
CVE-2024-42036P3HIGHCVSS 7.5v13.0.0v14.0.02024-08-08
CVE-2024-42036 [HIGH] CWE-285 CVE-2024-42036: Access permission verification vulnerability in the Notepad module Impact: Successful exploitation o Access permission verification vulnerability in the Notepad module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
nvd
CVE-2021-22354P3CRITICALCVSS 9.1v10.1.1v11.0.02021-06-30
CVE-2021-22354 [CRITICAL] CWE-125 CVE-2021-22354: There is an Information Disclosure Vulnerability in Huawei Smartphone. Successful exploitation of th There is an Information Disclosure Vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may cause out-of-bounds read.
nvd
CVE-2023-37240P3CRITICALCVSS 9.1v12.0.1v13.0.02023-07-06
CVE-2023-37240 [CRITICAL] CWE-125 CVE-2023-37240: Vulnerability of missing input length verification in the distributed file system. Successful expl Vulnerability of missing input length verification in the distributed file system. Successful exploitation of this vulnerability may cause out-of-bounds read.
nvd
CVE-2022-48312P3CRITICALCVSS 9.1v12.0.02023-04-16
CVE-2022-48312 [CRITICAL] CWE-125 CVE-2022-48312: The HwPCAssistant module has the out-of-bounds read/write vulnerability. Successful exploitation of The HwPCAssistant module has the out-of-bounds read/write vulnerability. Successful exploitation of this vulnerability may affect confidentiality and integrity.
nvd
CVE-2024-42035P3HIGHCVSS 7.8v14.0.02024-08-08
CVE-2024-42035 [HIGH] CWE-862 CVE-2024-42035: Permission control vulnerability in the App Multiplier module Impact:Successful exploitation of this Permission control vulnerability in the App Multiplier module Impact:Successful exploitation of this vulnerability may affect functionality and confidentiality.
nvd
CVE-2021-40012P3HIGHCVSS 7.5v11.0.0v12.0.02022-07-12
CVE-2021-40012 [HIGH] CVE-2021-40012: Vulnerability of pointers being incorrectly used during data transmission in the video framework. Su Vulnerability of pointers being incorrectly used during data transmission in the video framework. Successful exploitation of this vulnerability may affect confidentiality.
nvd
CVE-2021-40063P3HIGHCVSS 7.5v10.1.0v10.1.1+3 more2022-03-10
CVE-2021-40063 [HIGH] CVE-2021-40063: There is an improper access control vulnerability in the video module. Successful exploitation of th There is an improper access control vulnerability in the video module. Successful exploitation of this vulnerability may affect confidentiality.
nvd
Huawei Emui vulnerabilities | cvebase